Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations provided, the description carries the full burden of behavioral disclosure but fails entirely. It does not state that this is a destructive, irreversible operation, nor does it explain what happens to workflows that currently use this credential (failure vs. broken references).
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.